Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Cathy_Cheng
Participant
Jump to solution

DNS trap issue

 

We have enabled DNS Trap . When a laptop is configured to use a public DNS server (e.g., 8.8.8.8), DNS queries are sent directly to the internet. In this case, DNS Trap operates as expected, and nslookup a malious domain resolves to the DNS Trap IP address.

However, when the DNS setting is changed to use our internal DNS server, nslookup no longer resolves to the DNS Trap IP.

client-to-internal DNS traffic does not pass through the firewall, while only the traffic from the internal DNS server to external DNS servers traverses the firewall.

For DNS Trap to function with forwarded queries, the firewall must be positioned between the client and the internal DNS server?

0 Kudos
1 Solution

Accepted Solutions
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

The DNS Trap will only be effective if the Security Gateway is between the client and DNS server.

CCSM R77/R80/ELITE

View solution in original post

(1)
1 Reply
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

The DNS Trap will only be effective if the Security Gateway is between the client and DNS server.

CCSM R77/R80/ELITE
(1)

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events